CVE-2026-14480 | OpenPLC Runtime up to 3 Uploaded File os.path os.path.join prog_file unrestricted upload
A vulnerability categorized as critical has been discovered in OpenPLC Runtime up to 3. This impacts the function os.path.join of the file os.path of the component Uploaded File Handler. Such manipulation of the argument prog_file leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2026-14480. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More